1 / 11

IBM Security SiteProtector Overview

Padmaja Deshmukh – IBM Security Solution padmaja.deshmukh@in.ibm.com 30 th April 2011. IBM Security SiteProtector Overview. Today’s Business Challenges.

Télécharger la présentation

IBM Security SiteProtector Overview

An Image/Link below is provided (as is) to download presentation Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author. Content is provided to you AS IS for your information and personal use only. Download presentation by click this link. While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server. During download, if you can't get a presentation, the file might be deleted by the publisher.

E N D

Presentation Transcript


  1. Padmaja Deshmukh – IBM Security Solution padmaja.deshmukh@in.ibm.com 30th April 2011 IBM Security SiteProtector Overview

  2. Today’s Business Challenges • Security generalists need specialized trainingSecuring an enterprise can involve complex deployments that require a variety of highly-specialized trained personnel to manage • Due diligence for secure transactional systems Demonstrating and documenting accountability, transparency, and measurability for compliance is a top priority • Economical management of diverse toolsManaging myriads of “silo” security management tools, associated servers and license keys, and the cost in doing so • Tracking expanding universeIdentifying, managing, and securing enterprise assets • SMEs spread thinLimited security resources (time and expertise) • Burgeoning dataInformation overload and consolidation • Competing prioritiesCommunicating the value of your security process

  3. What is SiteProtector ? Proventia Management SiteProtector is a centralized management system that unifies management and analysis for agents, scanners and appliances. Its multi-tiered architecture ensures that it can be scaled effectively to meet the needs of large enterprise effectively.

  4. SiteProtector’s key capabilities are second to none How SiteProtector Solves the Problem • Delivers “room to grow” security, to combat the rising cost of security without hiring more personnel. • Centrally manages an enterprise mesh of technical controls. • Documents the security process for compliance and audit needs. • Reduces the personnel and training requirements for the enterprise security team. Available as a software package or as SiteProtector SP2001 – Appliance • Provides out of the box enterprise management • Includes OS and SQL server update maintenance on a hardened OS with Proventia Server Security protection

  5. SiteProtector direction: enhance usability, lower operating cost, preserve span of capabilities & improve integration

  6. In addition to management features, SiteProtector documents security for compliance and audit ASSET CLARIFICATION, INVENTORY AND OWNERSHIP “GREATEST RISKS” IDENTIFICATION Asset Assessment Detail Asset Assessment Summary Vulnerability Names By Assets Vulnerability Remedies by Asset Vulnerability Summary by Asset Vulnerability by Asset Vulnerability Trend Asset Assessment Summary Asset Assessment Detail Attack Status Summary Vulnerability Counts Top Vulnerabilities Attack Trend Top Attacks COMPANY, CONFIGURATION AND SECURITY POLICY IMPROVE OPERATIONAL SECURITY Attack Status Summary Desktop Protection Top Attacks Top Sources of Attack Top Targets of Attack In this initial stage, define your desired states for network and system configurations, resource protection and resource access VULNERABILITY REMEDIATION AND/OR INCIDENT RESPONSE “TRACK RECORD” Vulnerability Remedies by Asset Asset Assessment Summary Asset Assessment Detail Vulnerability Trend Vulnerability by Asset Vulnerability Names By Assets Vulnerability Summary by Asset Ticket Trending Ticket Time Tracking Ticket Activity Summary RE-ENFORCE COMPANY/ CONFIGURATION POLICIES WITH OWNERS SEGREGATION OF DUTIES Audit Detail Permission Detail SiteProtector Analysis Views

  7. SiteProtector’s Service Packs continue to expand value for security management • Central Response, Auditing, Express Install • SecureSync module • UI, Ticketing, Permissions, Asset view, Reporting, new platforms • Policy Management, SQL 2005, Email Reporting • Policy management, UI enhancements • Fidelis Integration • AppScan Integration • Appliance Expansion, BIRT Reporting, Analysis • GX, VSP & AppScan policy integration, Extended platform support, UI enhancements • SiteProtector Release 2.0 SP5 SP5.2 SP6 SP6.1 SP7 SP8.0 SP8.1 • Jan 05 • Jun 05 • Mar 06 • Dec 06 • Jun 08 • Jan 09 • May 09 • Jul 09 • Jul 10 • 2011

  8. SiteProtector Service Pack 8.0 (July 2009) • Policy Management • Policy diff between policies • Platform Support Included: • MS Server 2008 & SQL 2008 • MS Server 2005 & SQL 2005 • 64Bit Hardware and Windows OS support • No longer supported: • MS Windows 2000 Server • MS SQL Server 2000 • MSDE 2000 in express version

More Related